首页> 外文会议>International conference on ICT systems security and privacy protection >Assisted Authoring, Analysis and Enforcement of Access Control Policies in the Cloud
【24h】

Assisted Authoring, Analysis and Enforcement of Access Control Policies in the Cloud

机译:云中的访问控制策略的协助创作,分析和实施

获取原文

摘要

The heterogeneity of cloud computing platforms hinders the proper exploitation of cloud technologies since it prevents interoperability, promotes vendor lock-in and makes it very difficult to exploit the well-engineered security mechanisms made available by cloud providers. In this paper, we introduce a technique to help developers to specify and enforce access control policies in cloud applications. The main idea is twofold. First, use a high-level specification language with a formal semantics that allows to answer access requests abstracting from an access control mechanism available in a particular cloud platform. Second, exploit an automated translation mechanism to compute (equivar lent) policies that can be enforced in two of the most widely used cloud platforms: AWS and Openstack. We illustrate the technique on a running example and report our experience with a prototype implementation.
机译:云计算平台的异质性阻碍了云技术的适当开发,因为它防止互操作性,促进供应商锁定,并使云提供商提供的良好工程安全机制非常困难。在本文中,我们介绍了一种技术来帮助开发人员在云应用程序中指定和实施访问控制策略。主要想法是双重的。首先,使用高级规范语言,具有正式的语义,允许从特定云平台中提供的访问控制机制提取访问请求。其次,利用自动翻译机制来计算(等级借贷)策略,这些策略可以在两个最广泛使用的云平台中强制执行:AWS和OpenStack。我们说明了在跑步示例上的技术,并以原型实现报告我们的体验。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号